Gentoo Linux Security Advisory GLSA 200708-07
https://security.gentoo.org/
Severity: Normal
Title: Xfce Terminal: Remote arbitrary code execution
Date: August 11, 2007
Bugs: #184886
ID: 200708-07
Synopsis
=======
A vulnerability has been discovered in the Xfce Terminal program,
allowing for the remote execution of arbitrary code.
Background
=========
Xfce Terminal is a console tool for the Xfce desktop environment.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 xfce-extra/terminal < 0.2.6_p25931 >= 0.2.6_p25931
==========
Lasse Karkkainen discovered that the function terminal_helper_execute()
in file terminal-helper.c does not properly escape the URIs before
processing.
...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.